Posted by Patrick Webster via Fulldisclosure on Apr 04
https://www.osisecurity.com.au/kaseya-information-disclosure-vulnerability.html
Date:
04-Apr-2017
Product:
Kaseya VSA
Versions affected:
9.02.00.04
Vulnerability:
Installations of Kaseya contain the following installation page:
https://[target]/install/kaseya.html
When the product is installed, it cannot be installed again. However,
if you go to that page when it is installed, it reveals sensitive
information to the internet at large,…